[BF01] Identity-Based Encryption from the Weil Pairing

Authors: Dan Boneh, Matthew Franklin | Venue: Crypto 2001 | Source

Abstract

We propose a fully functional identity-based encryption scheme. The scheme has chosen ciphertext security in the random oracle model assuming an elliptic curve variant of the computational Diffie-Hellman problem. Our system is based on the Weil pairing on elliptic curves. We give precise definitions for secure identity-based encryption and give several applications for such systems. In particular, identity-based encryption is used to build a novel public-key infrastructure that does not require any certificates and supports key escrow. Our scheme is the first practical IBE scheme and remains one of the most efficient.